Autonomous multi-domain telemetry & cyber reconnaissance.
SEECOP fuses 116+ live map layers across air, maritime, space, radio, and cyber attack surfaces into a unified common operating picture. Driven by local neural agents, WebGPU browser offloading, and a 100-tool Kali OSINT workbench.
- Air
- Sea
- Space
- Thermal
- Radio
- CCTV & mesh
- Infrastructure
- Hazards
- Conflict
- Cyber
- Markets
- Space weather
- 116+
- Map layers
- 100
- OSINT & cyber tools
- 22,256
- CCTV & mesh endpoints
- 1,729
- CISA KEV CVEs
- WebGPU
- Execution enclave
12 domains
15 categories
21 ingestors
Live audit
Zero GPU egress
Unified threat surface & execution topology
116+ multi-domain map layers
Real-time telemetry across 12 domains: ADS-B aviation, AIS maritime tracking, SGP4 orbital satellite tracks, NASA FIRMS thermal hotspots, KiwiSDR and Meshtastic radio signals, submarine telecom cables, and 22,000+ CCTV camera endpoints.
SEECOP Desktop application
Electron + TypeScript workstation
Standalone desktop client featuring a custom operator HUD, a Builder tab for custom map compositions, Time Machine historical playback, and hardware-accelerated video and screen capture.
Zero-trust & WebGPU offloading
In-browser WebGPU execution handles quantized LLM inference and local vector embeddings without overloading server GPUs. Backed by Cloudflare Access OTP authentication for zero credential exposure.
Coverage: 12 domains
116+ layers- AirADS-B aviation
- SeaAIS maritime
- SpaceSGP4 orbital tracks
- ThermalNASA FIRMS hotspots
- RadioKiwiSDR, Meshtastic
- CCTV & mesh22,000+ endpoints
- InfrastructureCables, power, rail
- HazardsSeismic, wildfire
- Conflict & newsFrontlines, wire
- CyberKEV, C2 infrastructure
- MarketsDefense, energy
- Space weatherSolar, ionospheric
Kali Arsenal: 100 OSINT & cyber utilities
Executed through sandboxed host agents with structured JSON inputs. Active and intrusive tools sit behind server-side operator acknowledgement gates.
Recon & DNS
whois, dig, subfinder, amass, theHarvester, dnsx, gau, fierce*, dnsenum*
Network & web
nmap, httpx-toolkit, whatweb, katana, sslscan, nikto*, ffuf*, feroxbuster*
Red team & exploits
gitleaks, trufflehog, cdncheck, commix*, bloodhound*, secretsdump*, naabu*
DFIR & forensics
SleuthKit (fls/icat), foremost, scalpel, bulk_extractor, volatility3, Zeek, Suricata
Defense & hardening
yara, clamscan, chkrootkit, lynis
Data & analysis
jq, yq, mlr (Miller), csvcut, datamash, sqlite3, duckdb
Identity & metadata
sherlock, holehe, cewl, exiftool, binwalk, hashid, searchsploit
Capture & traffic
tcpdump, tshark, proxychains4, torsocks
* Intrusive tools require server-side acknowledgement gates and the OSINT_TOOLS_INTRUSIVE=1 enable flag.
Multi-phase technical roadmap
- Phase 1Live
Arsenal & desktop parity
Deployment of 100 OSINT and cyber tools, the SEECOP Desktop Electron client, 116 map layers, and file staging.
- Phase 2In progress
Hybrid cloud-edge failover & model abliteration
Abliterated Qwen 3.8B/4B expert model fine-tuning, Cloudflare Load Balancer active-passive origin failover, and automated CISA KEV target auditing.
- Phase 3Planned
STIX 2.1 persistence & MCP agent bridges
Append-only STIX 2.1 indicator exports, Model Context Protocol tool discovery over stdio, and GraphRAG retrieval.
- Phase 4Planned
Sovereign DePIN telemetry & deployable nodes
BlockAI proof-of-telemetry smart contracts, air-gapped on-premise hardware appliances, and decentralised sensor mesh sync.
Local model inference, no GPU egress
The assistant runs against a local model on the lab hardware. Grounded lookups — open ports, certificates, routing, CVE status — return cited answers, and queries stay inside the enclave.
Sign in and read the picture
Access is by email one-time PIN. The map and the assistant use the lab keys, not yours. No desktop install required for web access.
SEECOP — open-source intelligence, one picture. For authorized and lab use only.
seecop
A signed-in common operating picture. Open-source feeds on one map, with an assistant on the lab's own model.